Feature #14448
closed
Support interface groups in firewall rule source/destination fields
Added by Chris M Scott over 1 year ago.
Updated about 1 year ago.
Plus Target Version:
23.09
Description
You can select interface networks as a source/destination. It would be useful to be able to select an interface group as well for total abstraction
You can select interface networks as a source/destination. It would be useful to be able to select an interface group as well for total abstraction and a singe source of truth
- Project changed from pfSense Plus to pfSense
- Category changed from Rules / NAT to Rules / NAT
- Status changed from New to In Progress
- Assignee set to Marcos M
- Status changed from In Progress to Pull Request Review
Tested on
23.05.1-RELEASE (amd64)
built on Wed Jun 28 03:57:27 UTC 2023
FreeBSD 14.0-CURRENT
Option to choose "interface group" network appears in the firewall rules, pfctl shows created rules after a filter reload
pass in quick on igb1 inet proto tcp from 10.0.10.0/24 to any flags S/SA keep state label "USER_RULE" label "id:1690478259" ridentifier 1690478259
pass in quick on igb1 inet proto tcp from 192.168.10.0/24 to any flags S/SA keep state label "USER_RULE" label "id:1690478259" ridentifier 1690478259
USER_RULE id:1690478259 114 0 0 0 0 0 0 0
USER_RULE id:1690478259 14 0 0 0 0 0 0 0
tested on:
Version 2.7.0-RELEASE (amd64)
built on Wed Jun 28 03:53:34 UTC 2023
FreeBSD 14.0-CURRENT
Version 23.05.1-RELEASE (amd64)
built on Wed Jun 28 03:57:27 UTC 2023
FreeBSD 14.0-CURRENT
works solid. you can refer to the interface group networks even if some members don't have a subnet on them, and it doesn't break anything
- Status changed from Pull Request Review to Feedback
- % Done changed from 0 to 100
- Subject changed from Add interface group alias to firewall rules dialog to Support interface groups in firewall rule source/destination fields
- Status changed from Feedback to Resolved
- Target version set to 2.8.0
- Plus Target Version set to 23.09
- Target version changed from 2.8.0 to 2.7.1
- Is duplicate of Feature #746: Add interface group to source/dest drop downs added
Also available in: Atom
PDF